Abstract
Distributed denial of service (DDoS) is real time challenging problem for internet users. Due to unknown nature of attack, any defense mechanism should perform these two tasks: immediately detect the attack and take measurements to stop the upcoming flood. Currently deployed defense mechanisms can easily be defeated by the attackers because they know the weaknesses in the systems. Yaar [I] proposed Pi marking scheme using the 16 bit IP header identification field. The performance of Pi marking is not effective because of static I bit or 2 bit marking criteria. Our technique decides the packet marking dynamically on the bases of number of hop counts. The performance is promising as compared to other existing schemes.